Tag Archive for: perfect

The Perfect Storm – How Mobile Reliance Has Forced Financial Services Beyond Device Management


Tablets and smartphones have become a primary tool to manage work and life as digital transformation accelerated last year. This trend is especially evident in the finance sector, where both workers and customers have become dependent on mobile devices to do everything from shopping, playing bills and managing finances. Similarly, financial employees are using the very same devices to stay productive as they continue to work away from the office.

The increased usage of mobile devices in the financial sector means both organisations and customers are exposed to new risks. These devices now have as much access to corporate infrastructure as traditional endpoints and hold more sensitive financial information than ever. Therefore, it is no surprise that the financial sector was the most targeted industry in 2020 by cybercriminals. To ensure that they tap into the productivity that comes from mobility, financial organisations need to embrace modern security technologies and strategies to secure the mobile devices and apps their employees and customers use the most. 

The need for dedicated endpoint security solutions

In an attempt to secure their mobile devices, the financial industry increased their use of mobile device management (MDM) solutions by 50 percent during the pandemic. Despite these efforts, cyberattacks did not decrease during the same period. Phishing remained one of the most common forms of cyberattacks while malware exposure rose by over five times. These trends illustrate that financial services organisations need to think beyond MDM when it comes to securing their mobile devices and their corporate data. 

We’re more susceptible to phishing attacks

There’s a reason that we saw a 125 percent increase in the average quarterly mobile phishing exposure rate for financial organisations. With everyone working from home, or continuing to do so under a hybrid-work environment, security teams have lost the visibility they had inside their perimeter. It also doesn’t help that people are using personal mobile devices and using networks organisations don’t control. In addition, consumers are using mobile devices to access sensitive data…

Source…

Perfect Forward Secrecy Explained – Hashed Out by The SSL Store™


Perfect Forward Secrecy Ensures HTTPS Traffic Stays Encrypted – Even if the Private Key is Later Compromised

Imagine for a second that someone breaks into your house. They can theoretically take whatever is in your place at that moment. That’s a scary enough thought right there. But what if it went a step further? What if they could also pick from everything that’s ever been in your house in the past? And then be able to steal any future item you purchase, as well? Sounds like a nightmare scenario, doesn’t it?

Unfortunately, the same thing can happen with your data. Encryption keeps it safe, but only as long as your private key is safe. We all dread the thought of one of our private keys being compromised, ending up in the hands of a hacker. Your future communications would immediately be at risk. Not only that, but what’s stopping them from examining your past data for juicy, sensitive information that they can exploit for their own gain?

But don’t worry, it’s not all doom and gloom. Cryptographers have once again come to the rescue! A solution was created to deal with exactly this sort of problem, and it’s called “perfect forward secrecy.” Long story short, it prevents future security incidents from compromising past encrypted data.

More and More Site Owners Are Taking Advantage of Perfect Forward Secrecy

Even better, it’s a security feature that is continuing to become more and more common. All major browsers support it, as do post-Windows XP operating systems. SSL Labs found in their October 2020 scan that 21.8% of surveyed sites supported perfect forward secrecy with all modern browsers and 64.5% supported perfect forward secrecy with most browsers. Only 1.2% of sites didn’t support perfect forward secrecy at all.   

The numbers keep going up, and the support of industry giants certainly hasn’t hurt, either. Google has been using it with Gmail and other products for years now, and Apple made perfect forward secrecy a requirement on the App Store in 2017. When TLS 1.3 was introduced, the Internet Engineering Task Force (IETF) mandated perfect forward secrecy, only allowing cipher suits that offered it. It’s an important part…

Source…

Trailer for ‘The Perfect Weapon’ Highlights the Rise and Threat of Cyber Warfare – Rolling Stone

Trailer for ‘The Perfect Weapon’ Highlights the Rise and Threat of Cyber Warfare  Rolling Stone
“cyber warfare news” – read more

Over a Billion Android Phones Turned Into Perfect Spying Tools by Security Flaws – CPO Magazine

Over a Billion Android Phones Turned Into Perfect Spying Tools by Security Flaws  CPO Magazine
“android security news” – read more